All authors
peterbamuhigire avatar

Claude Skills by peterbamuhigire

github.com/peterbamuhigire
296 skillsA× 289B× 70 installs93 views
00 Meta InitializationA

Detect project type, recommend documentation methodology (Waterfall/Agile/Hybrid), and generate documentation roadmap. Use this as the FIRST skill when starting documentation for any project.

developmentjavascriptpython
0
25
New ProjectA

Use when the task matches skill: new project scaffold and this skill's local workflow.

developmentgofrontend
0
25
Ai Agent Approval Audit CompletenessA

Use when proving that every irreversible agent action in the audit window had a documented, signed approval — completeness check (gap-detection job), approval-evidence cross-link to the hash-chained action audit log, and evidence pack for SOC 2 Processing Integrity (PI1.1). Pairs with `ai-agent-action-approval-and-hitl` (mechanism) and `ai-agent-audit-log-integrity` (storage).

developmentpythongo
0
25
Ai Agent Commercial OperationsA

Use when pricing, billing, refunding, recognizing revenue, or packaging commercial terms for agentic AI services and outcomes.

developmentsecurity
0
25
Ai Agent Compliance ControlsA

Use when mapping AI agent operations to SOC 2, ISO 27001, HIPAA, audit logs, control testing, attestations, and compliance evidence.

developmenttestingsecurity
0
25
Ai Agent Drill Evidence And CadenceA

Use when capturing kill-switch, red-team, and eval-drift drills as audit-ready compliance evidence — minimum-cadence enforcement, pass/fail recording, and cross-link to the incident drill skill. Turns drills from operational exercises into SOC 2 / ISO 27001 / HIPAA evidence rows with signed packs.

developmentpythongo
0
25
Ai Agent Governance And LimitsA

Use when defining agent budgets, step limits, reversibility, blast-radius controls, kill switches, and governance policy for agentic AI systems.

developmentgosecurity
0
25
Ai Agent Memory Erasure ProofA

Use when proving agent-memory erasure was complete and verifiable for GDPR / CCPA / POPIA / KE DPA requests — the 9-step cascade verification job emits a signed-off evidence pack. Pairs with `ai-agent-memory` (three-tier memory + erasure cascade) and `saas-tenant-data-portability-and-erasure` (tenant-level erasure pipeline).

data-aipythongo
0
25
Ai Agent Multi Agent CoordinationA

Use when designing systems where multiple agents collaborate on one task — supervisor/worker, debate, plan-execute, peer handoff. Covers handoff message contracts, shared scratchpad, conflict resolution, deadlock detection, and the cost/SLA discipline that keeps multi-agent setups from spiralling.

developmentpythonrust
0
25
Ai Agent Observability EvaluationA

Use when measuring, evaluating, replaying, evidencing, or tracking success for AI agent tasks, steps, traces, and outcomes.

developmentsecurity
0
25
Ai Agent Runtime ArchitectureA

Use when designing the runtime that hosts agentic LLM features in a multi-tenant SaaS — the agent loop as a control-plane service, formal state machine (PERCEIVE → PLAN → ACT → OBSERVE), retries, idempotency, max-step caps, deterministic resumability, and the "agent vs workflow vs cron" decision. Distinct from `ai-agents-tools` (agent fundamentals) and `ai-on-saas-architecture` (overall AI architecture).

developmentpythongo
0
25
Ai Agent Safety And Red TeamA

Use when hardening agentic features against agent-specific attack surfaces — indirect prompt injection (via tool output, retrieved chunk, web page), action escalation (chain a low-privilege tool's output into a high-privilege tool's args), tenant data exfil via tool chain, recursive self-modification, and the CI red-team suite that catches regressions. Distinct from `ai-prompt-injection-and-tenant-safety` (direct user-input injection) by focusing on the agent's *tool-and-data perimeter*.

developmentpythonrust
0
25
Ai Agent Sla And Customer CommitmentsA

Use when defining agent SLAs, customer commitments, SLA dashboards, credits, support promises, and service evidence for agentic AI products.

developmentsecurity
0
25
Ai Agent Tooling And HitlA

Use when designing agent tool catalogs, tool schemas, action gating, human approval, and human-in-the-loop control for agentic AI systems.

developmentsecurity
0
25
Ai AnalyticsA

Use when designing AI analytics, dashboards, SaaS AI metrics, NLP analytics, predictive analytics, or executive AI insight workflows. Orchestrates the former granular AI analytics skills as references.

developmentsecurity
0
25
Ai App ArchitectureA

Use when designing or building AI-powered application systems — choosing

developmentrustgo
0
25
Ai Cost And MeteringA

Use when modeling, metering, attributing, billing, or controlling AI usage costs across tenants, plans, features, providers, and agent workloads.

developmentsecurity
0
25
Ai Economic Value EngineA

Use when discovering, designing, prioritizing, or auditing AI-powered products

developmentrustgo
0
25
Ai Entitlements And Feature GatingA

Use when designing how AI features are unlocked by plan tier — which model tier (flagship vs distilled), context-length limits, generations/day, tools available to the agent, KB ingestion size, gated AI features (per-feature toggle by plan). Covers entitlement schema, gateway enforcement, upgrade UX, and the contract with `saas-entitlements-and-plan-gating` for the catalogue.

developmentpythongo
0
25
Ai EvaluationA

Use when setting up quality assurance for AI features — defining evaluation

developmentgophp
0
25
Ai Feature Rollout And ExperimentationA

Use when rolling out AI features safely in a multi-tenant SaaS — feature flags scoped per tenant/user, percentage rollouts gated by eval and SLO budget, canary cohorts, A/B testing of prompts/models, automatic rollback on quality regression, tenant-level opt-out and consent, and shadow-mode for risky changes.

developmentgosql
0
25
Ai Feature SpecA

Design a single AI-powered feature end-to-end — model selection, prompt

developmentgosql
0
25
Ai Incident ResponseA

Use when preventing, detecting, triaging, communicating, recovering from, or reviewing AI incidents, AI errors, RCA, and postmortems.

developmentsecurity
0
25
Ai Llm IntegrationA

Integrate LLMs into any application — OpenAI, Anthropic Codex, DeepSeek,

developmentjavascripttypescript
0
25
Ai Model GatewayA

Use when designing or building the LLM gateway — the single outbound surface from the SaaS to all LLM providers. Covers provider abstraction, model selection per tenant tier, fallback chains, retries, per-tenant rate limiting and token caps, request signing, audit logging, regional routing for data residency, cost capture at write time, kill-switch enforcement, and the SDK/HTTP contract feature teams consume.

developmentpythongo
0
25
Ai Observability And DebuggingA

Use when building the observability stack for AI features in a multi-tenant SaaS — prompt/response tracing, semantic logging, replay tooling, "show me why this answer", per-stage latency/cost breakdown, ticket→trace tie-back, and dashboards that answer the operational questions (which tenant, which feature, which prompt version, which model).

developmentpythongo
0
25
Ai Opportunity CanvasA

Systematically discover and rank AI use cases for any software project

developmentgoapi
0
25
Ai Prompt EngineeringA

Use when writing, refining, or structuring prompts for AI-powered app

developmentpythonrust
0
25
Ai Rag PatternsA

Use when building features that answer questions from private data, documents,

developmentgodatabase
0
25
Ai SecurityA

Security checklist for AI-powered application features — prompt injection

developmentrustgo
0
25
Ai Web AppsA

Use when designing or building an AI-enhanced web app (Next.js + Vercel AI SDK, MCP tools, multi-provider chat/RAG) — produces the module gate, token-ledger + budget schema, provider abstraction, and output guardrails. Specialises the integration patterns in `ai-architecture-patterns` for a web-app runtime; hand off metering depth to `ai-metering-billing` and prompt/threat depth to `ai-security` / `llm-security`.

developmentpythonrust
0
25
Openai Agents SdkA

Build production AI agents with the OpenAI Agents SDK (Python) — 6 core

developmentpythongo
0
25
Api Design FirstA

Use when designing or building HTTP APIs — spec-first OpenAPI workflow, REST conventions, versioning, auth model, rate limiting, idempotency keys, error envelope, and observability notes. Produces the OpenAPI contract plus error/auth/idempotency/observability artifacts that frontend, mobile, security, and reliability skills consume. For endpoint-level security review load `vibe-security-skill`; for GraphQL-specific hardening load `graphql-patterns` reference `references/graphql-security.md`.

developmenttypescriptrust
0
25
Distributed Systems PatternsA

Use when designing or reviewing multi-service, message-driven, or eventually

developmentgoapi
0
25
Graphql PatternsA

Use when designing, building, or operating GraphQL APIs with Apollo Server +

developmentjavascripttypescript
0
25
Microservices ArchitectureA

Use when designing, reviewing, or refactoring microservice boundaries, communication, service ownership, deployment independence, resilience, and distributed data flows. Load absorbed microservices fundamentals, models, communication, and resilience references as needed.

developmentrefactoringapi
0
25
System Architecture DesignA

Use when defining or reviewing software architecture for web apps, mobile

developmentapidatabase
0
25
Validation ContractA

Use when authoring or normalising a specialist skill, or preparing to ship a feature or release — defines the seven evidence categories every specialist skill must declare against and provides the canonical Release Evidence Bundle template. The contract spine that turns scattered validation skills into a coherent ship-readiness check.

developmentgotesting
0
25
Database Design EngineeringA

Use when designing or reviewing relational or document-backed data architecture

developmentgosql
0
25
Database ReliabilityA

'Database reliability engineering: SLI/SLO design and error-budget policy

developmentgosql
0
25
Mysql EngineeringA

Use when designing, implementing, or reviewing MySQL application schemas, SQL, indexes, constraints, stored routines, and production query patterns. Load absorbed MySQL best-practice, data-modeling, and advanced-SQL reference files as needed.

developmentsqldatabase
0
25
Mysql OperationsA

Use when administering, tuning, backing up, restoring, monitoring, or troubleshooting MySQL production systems. Load absorbed MySQL administration and query-performance reference files for operational runbooks, indexes, replication, and incident response.

developmentsqldatabase
0
25
Postgresql EngineeringA

Use when designing, implementing, or reviewing PostgreSQL application data models, SQL, indexes, constraints, extensions, server-side routines, and production query patterns. Load the absorbed PostgreSQL reference files for fundamentals, advanced SQL, schema patterns, and server programming.

developmentsqldatabase
0
25
Postgresql OperationsA

Use when administering, tuning, backing up, restoring, monitoring, or troubleshooting PostgreSQL production systems. Load the absorbed PostgreSQL administration and performance reference files for operational runbooks, query tuning, vacuum, replication, and incident response.

developmentsqldatabase
0
25
Cicd PipelinesA

Use when designing or implementing a CI/CD pipeline — stage gates, GitHub Actions production patterns (matrix, reusable workflows, environments), OIDC federation to AWS/GCP/Vault, dependency and Docker-layer caching, fan-out/fan-in orchestration, blue/green and canary deployment, pipeline observability (DORA metrics, queue time), and choosing between GitHub Actions and GitLab CI.

developmenttypescriptpython
0
25
Cloud ArchitectureB

Use when designing cloud deployments, Dockerising applications, laying out AWS or GCP environments, choosing a deployment pattern, or moving a workload from a single VM to a resilient multi-AZ topology.

developmentgoshell
0
25
Deployment Release EngineeringA

Use when designing or reviewing deployment pipelines, rollout strategies,

developmentjavascriptpython
0
25
Docker DevelopmentA

Docker and Docker Compose standards for PHP, Python, JavaScript, and API services. Use when containerizing development environments, production images, CI builds, PHP-FPM/Nginx stacks, Python sidecars, Node/JS services, or multi-service SaaS deployments.

developmentjavascripttypescript
0
25
Infrastructure As CodeA

Use when provisioning or changing cloud infrastructure with Terraform or Ansible — modules, remote state with S3 native locking, workspaces vs directory-per-env, common AWS patterns, idempotent Ansible roles for Debian/Ubuntu, GitOps with ArgoCD/Flux, drift detection, and Vault secret injection.

developmentpythongo
0
25
Kubernetes PlatformA

Use when running Kubernetes as a platform team — bootstrapping self-managed clusters on Debian/Ubuntu, designing multi-tenant RBAC, enforcing Pod Security and resource quotas, and operating cluster lifecycle (upgrades, certs, etcd, ingress, cert-manager, metrics-server). Self-managed first, cloud-managed second.

developmentgobash
0
25